sco*_*tus 7 rdp domain rpc internal-dns windows-server-2012-r2
尝试从同一域上的任何 Windows 10 工作站或来自外部源的任何 Windows 客户端进行 RDP 时,域成员服务会报告以下内容:
远程桌面无法验证远程计算机的身份,因为您的计算机与远程计算机之间存在时间或日期差异。确保您的计算机时钟设置为正确的时间,然后再次尝试连接。如果问题再次出现,请联系您的网络管理员或远程计算机的所有者。
成员服务器事件日志包含:
EVENTID 5719。由于以下原因,此计算机无法与域中的域控制器建立安全会话: RPC 服务器不可用。
EVENTID 1054。组策略的处理失败。Windows 无法获得域控制器的名称。这可能是由名称解析失败引起的。验证您的域名系统 (DNS) 已配置并正常工作。
会员服务器
PDC
数据中心
交换服务器
WINDOWS 10 客户端
一些可能很重要的进一步信息:
我有另一个域控制器死了(虚拟服务器)。它是使用正确的程序(元数据删除、转移角色、从 DNS 删除等)从域中手动删除的。满足这不再是问题。服务器名称未出现在任何错误日志中。现有域控制器(PDC、SDC)上的 DCDIAG 没有报告错误。这是好几个月前的事了。
当域控制器 (vserver) 死机时,工作站报告时间同步问题。几个月前,所有客户端工作站都使用下面详述的 W32TM 命令解决了这个问题。此 W32TM 尚未解决并没有解决此处记录的有问题的成员服务器问题。
会员服务器
Allow Remote Administration Exception和Allow File and Printer Sharing Exception。Windows Management Instrumentation服务运行域控制器和成员服务器。TCP/IP NetBIOS Helper服务正在域控制器和成员服务器上运行。Remote Procedure Call服务正在域控制器和成员服务器上运行。成员服务器w32tm /query /configuration结果
[Configuration]
EventLogFlags: 2 (Local)
AnnounceFlags: 10 (Local)
TimeJumpAuditOffset: 28800 (Local)
MinPollInterval: 10 (Local)
MaxPollInterval: 15 (Local)
MaxNegPhaseCorrection: 4294967295 (Local)
MaxPosPhaseCorrection: 4294967295 (Local)
MaxAllowedPhaseOffset: 300 (Local)
FrequencyCorrectRate: 4 (Local)
PollAdjustFactor: 5 (Local)
LargePhaseOffset: 50000000 (Local)
SpikeWatchPeriod: 900 (Local)
LocalClockDispersion: 10 (Local)
HoldPeriod: 5 (Local)
PhaseCorrectRate: 1 (Local)
UpdateInterval: 30000 (Local)
[TimeProviders]
NtpClient (Local)
DllName: C:\Windows\system32\w32time.DLL (Local)
Enabled: 1 (Local)
InputProvider: 1 (Local)
CrossSiteSyncFlags: 2 (Local)
AllowNonstandardModeCombinations: 1 (Local)
ResolvePeerBackoffMinutes: 15 (Local)
ResolvePeerBackoffMaxTimes: 7 (Local)
CompatibilityFlags: 2147483648 (Local)
EventLogFlags: 1 (Local)
LargeSampleSkew: 3 (Local)
SpecialPollInterval: 3600 (Local)
Type: AllSync (Local)
NtpServer: time.windows.com (Local)
NtpServer (Local)
DllName: C:\Windows\system32\w32time.DLL (Local)
Enabled: 0 (Local)
InputProvider: 0 (Local)
VMICTimeProvider (Local)
DllName: C:\Windows\System32\vmictimeprovider.dll (Local)
Enabled: 0 (Local)
InputProvider: 1 (Local)
Run Code Online (Sandbox Code Playgroud)
成员服务器w32tm /query /status结果:
Leap Indicator: 0(no warning)
Stratum: 3 (secondary reference - syncd by (S)NTP)
Precision: -6 (15.625ms per tick)
Root Delay: 0.1455078s
Root Dispersion: 0.0777873s
ReferenceId: 0x0D4FEF45 (source IP: 13.79.239.69)
Last Successful Sync Time: 05/07/2017 13:31:40
Source: time.windows.com
Poll Interval: 12 (4096s)
Run Code Online (Sandbox Code Playgroud)
成员服务器RPCping结果:
Completed 1 calls in 15 ms
66 T/S or 15.000 ms/T
Run Code Online (Sandbox Code Playgroud)
当问题尚未再次发生时,上述这些测试是在重启后几个小时执行的。我可以重复测试并在再次发生时发布结果。
PDC
PDCw32tm /query /status结果:
Leap Indicator: 0(no warning)
Stratum: 3 (secondary reference - syncd by (S)NTP)
Precision: -6 (15.625ms per tick)
Root Delay: 0.1517181s
Root Dispersion: 0.0426882s
ReferenceId: 0x338D2033 (source IP: 51.141.32.51)
Last Successful Sync Time: 05/07/2017 13:18:51
Source: time.windows.com
Poll Interval: 10 (1024s)
Run Code Online (Sandbox Code Playgroud)
数据中心
似乎很清楚它的时间同步问题。我相信这是我迄今为止尝试调试和解决此问题的所有内容,如果我能记住其他任何内容,将进行编辑。感谢您的任何帮助(办公桌/头/砰)。渴望了解根本原因。
斯科特
参考文献2。生成树阻止 Windows/BOOTP 中的 DHCP 请求
参考文献2。https://nchrissos.wordpress.com/2013/04/26/configuring-time-on-windows-2008-r2-servers/
根据 Joeqwerty 的评论进行编辑(谢谢 Joe)。
当前状态
修正案
但是,现在已在有问题的成员服务器上应用了以下更改(请参阅REF3):
Reg KeyHKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\W32Time\Parameters\Type=NTP从 NTP 修改为 NT5DS
Windows 时间服务重新启动..
w32tm /query /configuration现在的输出显示:
[TimeProviders]
NtpClient (Local)
DllName: C:\Windows\system32\w32time.DLL (Local)
Enabled: 1 (Local)
InputProvider: 1 (Local)
CrossSiteSyncFlags: 2 (Local)
AllowNonstandardModeCombinations: 1 (Local)
ResolvePeerBackoffMinutes: 15 (Local)
ResolvePeerBackoffMaxTimes: 7 (Local)
CompatibilityFlags: 2147483648 (Local)
EventLogFlags: 1 (Local)
LargeSampleSkew: 3 (Local)
SpecialPollInterval: 3600 (Local)
Type: NT5DS (Local)
Run Code Online (Sandbox Code Playgroud)已应用 GPUPDATE
Type: NT5DS (Local)检查时仍然显示w32tm /query /configuration。
我需要将其放置几天并尝试重新启动,然后才能确认问题已解决。
w32tm /query /configuration依然显示Type: NT5DS (Local)供参考 w32tm /query /status
Leap Indicator: 0(no warning)
Stratum: 4 (secondary reference - syncd by (S)NTP)
Precision: -6 (15.625ms per tick)
Root Delay: 0.1827698s
Root Dispersion: 7.8574884s
ReferenceId: 0xC0A80103 (source IP: 192.168.1.3)
Last Successful Sync Time: 06/07/2017 16:29:58
Source: PDC.MYDOMAIN.COM
Poll Interval: 10 (1024s)
Run Code Online (Sandbox Code Playgroud)对不起所有的文字。
上面的 RDP 错误文档还没有再次出现,但发布了一个更新,以强调在 UTC 时间 0200 时,成员服务器事件日志再次开始报告在此线程开始时记录的 EVENTID 错误,主要是:
在过去,我发现如果有足够的时间,这是 RDP 连接/时间同步问题的前兆。
作为回应,我从遇到问题的成员服务器执行以下所有操作:
w32tm /查询/状态
Leap Indicator: 0(no warning)
Stratum: 4 (secondary reference - syncd by (S)NTP)
Precision: -6 (15.625ms per tick)
Root Delay: 0.8504282s
Root Dispersion: 0.3015940s
ReferenceId: 0xC0A80103 (source IP: 192.168.1.3)
Last Successful Sync Time: 07/07/2017 06:08:58
Source: PDC.MYDOMAIN.COM
Poll Interval: 13 (8192s)
Run Code Online (Sandbox Code Playgroud)w32tm /查询/配置
[Configuration]
EventLogFlags: 2 (Local)
AnnounceFlags: 10 (Local)
TimeJumpAuditOffset: 28800 (Local)
MinPollInterval: 10 (Local)
MaxPollInterval: 15 (Local)
MaxNegPhaseCorrection: 4294967295 (Local)
MaxPosPhaseCorrection: 4294967295 (Local)
MaxAllowedPhaseOffset: 300 (Local)
FrequencyCorrectRate: 4 (Local)
PollAdjustFactor: 5 (Local)
LargePhaseOffset: 50000000 (Local)
SpikeWatchPeriod: 900 (Local)
LocalClockDispersion: 10 (Local)
HoldPeriod: 5 (Local)
PhaseCorrectRate: 1 (Local)
UpdateInterval: 30000 (Local)
[TimeProviders]
NtpClient (Local)
DllName: C:\Windows\system32\w32time.DLL (Local)
Enabled: 1 (Local)
InputProvider: 1 (Local)
CrossSiteSyncFlags: 2 (Local)
AllowNonstandardModeCombinations: 1 (Local)
ResolvePeerBackoffMinutes: 15 (Local)
ResolvePeerBackoffMaxTimes: 7 (Local)
vCompatibilityFlags: 2147483648 (Local)
EventLogFlags: 1 (Local)
LargeSampleSkew: 3 (Local)
SpecialPollInterval: 3600 (Local)
Type: NT5DS (Local)
NtpServer (Local)
DllName: C:\Windows\system32\w32time.DLL (Local)
Enabled: 0 (Local)
InputProvider: 0 (Local)
VMICTimeProvider (Local)
DllName: C:\Windows\System32\vmictimeprovider.dll (Local)
Enabled: 0 (Local)
InputProvider: 1 (Local)
Run Code Online (Sandbox Code Playgroud)RPCping
Completed 1 calls in 1 ms
1000 T/S or 1.000 ms/T
Run Code Online (Sandbox Code Playgroud)网络时间/域:mydomain.com.com
Current time at \\PDC.MYDOMAIN.COM is 07/07/2017 06:51:29
Run Code Online (Sandbox Code Playgroud)w32tm /查询/源
PDC.MYDOMAIN.COM
Run Code Online (Sandbox Code Playgroud)W32tm /monitor /domain:mydomain.com
PDC.MYDOMAIN.COM *** PDC ***[192.168.1.3:123]:
ICMP: 0ms delay
NTP: +0.0000000s offset from PDC.MYDOMAIN.COM
RefID: (unknown) [0x33208D33]
Stratum: 3
SDC.MYDOMAIN.COM.COM[192.168.1.1:123]:
ICMP: 0ms delay
NTP: -0.0013367s offset from PDC.MYDOMAIN.COM
RefID: PDC.MYDOMAIN.COM [192.168.1.3]
Stratum: 4
Warning:
Reverse name resolution is best effort. It may not be
correct since RefID field in time packets differs across
NTP implementations and may not be using IP addresses.
Run Code Online (Sandbox Code Playgroud)修改后的 NT5DS 设置仍然存在。给它几个小时,RDP 问题将再次发生。不知道从这里去哪里抱歉。
针对 Drifter104 ,请在下面找到每个节点的 IPCONFIG/ALL 输出:
会员服务器
Windows IP Configuration
Host Name . . . . . . . . . . . . : memberserver
Primary Dns Suffix . . . . . . . : mydomain.com
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : mydomain.com
Ethernet adapter Ethernet:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : HP Ethernet 1Gb 2-port 330i Adapter
Physical Address. . . . . . . . . : 28-80-23-90-ED-D8
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv4 Address. . . . . . . . . . . : 192.168.1.2(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.1.25
DNS Servers . . . . . . . . . . . : 192.168.1.1
192.168.1.3
Primary WINS Server . . . . . . . : 192.168.1.1
Secondary WINS Server . . . . . . : 192.168.1.3
NetBIOS over Tcpip. . . . . . . . : Enabled
Tunnel adapter isatap.{C78DD9B1-685E-4DB0-BE2C-79D92494D094}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Run Code Online (Sandbox Code Playgroud)
PDC
Windows IP Configuration
Host Name . . . . . . . . . . . . : PDC
Primary Dns Suffix . . . . . . . : mydomian.COM
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : mydomain.COM
Ethernet adapter Ethernet:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : HP Ethernet 1Gb 2-port 332i Adapter #2
Physical Address. . . . . . . . . : 64-51-06-0D-EE-C9
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::2440:bffc:b999:f930%12(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.3(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : fe80::217:c5ff:fe28:91cc%12
192.168.1.25
DHCPv6 IAID . . . . . . . . . . . : 207900934
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1C-53-B2-D2-64-51-06-0D-EE-C9
DNS Servers . . . . . . . . . . . : 192.168.1.3
192.168.1.1
127.0.0.1
Primary WINS Server . . . . . . . : 192.168.1.1
Secondary WINS Server . . . . . . : 192.168.1.3
NetBIOS over Tcpip. . . . . . . . : Enabled
Tunnel adapter isatap.{0C6841BD-69AB-491B-819B-9167B188139A}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Run Code Online (Sandbox Code Playgroud)
数据中心
Windows IP Configuration
Host Name . . . . . . . . . . . . : SDC
Primary Dns Suffix . . . . . . . : mydomain.COM
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : mydomain.COM
Ethernet adapter Ethernet:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : HP Ethernet 1Gb 2-port 332i Adapter
Physical Address. . . . . . . . . : 64-51-06-0D-EA-B8
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::e006:41b6:be7c:e580%2(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.1(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : fe80::217:c5ff:fe28:91cc%2
192.168.1.25
DHCPv6 IAID . . . . . . . . . . . : 56905990
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-20-E6-6B-A7-64-51-06-0D-EA-B8
DNS Servers . . . . . . . . . . . : ::1
192.168.1.1
192.168.1.3
Primary WINS Server . . . . . . . : 192.168.1.3
Secondary WINS Server . . . . . . : 192.168.1.1
NetBIOS over Tcpip. . . . . . . . : Enabled
Tunnel adapter isatap.{0A5E9C3A-B92E-4114-B0BF-5A30BCA821D7}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Run Code Online (Sandbox Code Playgroud)
会员服务器
在回复评论时删除了 WINS 地址。
Windows IP Configuration
Host Name . . . . . . . . . . . . : memberserver
Primary Dns Suffix . . . . . . . : mydomain.com
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
DNS Suffix Search List. . . . . . : mydomain.com
Ethernet adapter Ethernet:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : HP Ethernet 1Gb 2-port 330i Adapter
Physical Address. . . . . . . . . : 28-80-23-90-ED-D8
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
IPv4 Address. . . . . . . . . . . : 192.168.1.2(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.1.25
DNS Servers . . . . . . . . . . . : 192.168.1.1
192.168.1.3
NetBIOS over Tcpip. . . . . . . . : Enabled
Tunnel adapter isatap.{C78DD9B1-685E-4DB0-BE2C-79D92494D094}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Run Code Online (Sandbox Code Playgroud)
将很快重启机器。
自上次更新后 72 小时,该问题再次出现。RDP 并尝试向域管理员用户进行身份验证会导致:
远程桌面无法验证远程计算机的身份,因为您的计算机与远程计算机之间存在时间或日期差异。确保您的计算机时钟设置为正确的时间,然后再次尝试连接。如果问题再次出现,请联系您的网络管理员或远程计算机的所有者。
以本地会员服务管理员身份登录成功。
w32tm /查询/状态
Leap Indicator: 0(no warning)
Stratum: 4 (secondary reference - syncd by (S)NTP)
Precision: -6 (15.625ms per tick)
Root Delay: 0.1826172s
Root Dispersion: 0.1925883s
ReferenceId: 0xC0A80103 (source IP: 192.168.1.3)
Last Successful Sync Time: 10/07/2017 04:27:51
Source: PDC.MYDOMAIN.COM
Poll Interval: 15 (32768s)
Run Code Online (Sandbox Code Playgroud)w32tm /查询/配置
[Configuration]
EventLogFlags: 2 (Local)
AnnounceFlags: 10 (Local)
TimeJumpAuditOffset: 28800 (Local)
MinPollInterval: 10 (Local)
MaxPollInterval: 15 (Local)
MaxNegPhaseCorrection: 4294967295 (Local)
MaxPosPhaseCorrection: 4294967295 (Local)
MaxAllowedPhaseOffset: 300 (Local)
FrequencyCorrectRate: 4 (Local)
PollAdjustFactor: 5 (Local)
LargePhaseOffset: 50000000 (Local)
SpikeWatchPeriod: 900 (Local)
LocalClockDispersion: 10 (Local)
HoldPeriod: 5 (Local)
PhaseCorrectRate: 1 (Local)
UpdateInterval: 30000 (Local)
[TimeProviders]
NtpClient (Local)
DllName: C:\Windows\system32\w32time.DLL (Local)
Enabled: 1 (Local)
InputProvider: 1 (Local)
CrossSiteSyncFlags: 2 (Local)
AllowNonstandardModeCombinations: 1 (Local)
ResolvePeerBackoffMinutes: 15 (Local)
ResolvePeerBackoffMaxTimes: 7 (Local)
CompatibilityFlags: 2147483648 (Local)
EventLogFlags: 1 (Local)
LargeSampleSkew: 3 (Local)
SpecialPollInterval: 3600 (Local)
Type: NT5DS (Local)
NtpServer (Local)
DllName: C:\Windows\system32\w32time.DLL (Local)
Enabled: 0 (Local)
InputProvider: 0 (Local)
VMICTimeProvider (Local)
DllName: C:\Windows\System32\vmictimeprovider.dll (Local)
Enabled: 0 (Local)
InputProvider: 1 (Local)
Run Code Online (Sandbox Code Playgroud)RPCping
Exception 1722 (0x000006BA)
Number of records is: 10
ProcessID is 65644
System Time is: 7/10/2017 6:7:3:935
Generating component is 18
Status is 0x6BA, 1722
Detection location is 1442
Flags is 0
NumberOfParameters is 1
Unicode string:
ProcessID is 65644
System Time is: 7/10/2017 6:7:3:935
Generating component is 18
ETC .... (large result)
Run Code Online (Sandbox Code Playgroud)网络时间/域:mydomain.com.com
The service has not been started.
Run Code Online (Sandbox Code Playgroud)w32tm /查询/源
PDC.mydomain.COM
Run Code Online (Sandbox Code Playgroud)W32tm /monitor /domain:mydomain.com
GetDcList failed with error code: 0x800706BA.
Exiting with error 0x800706BA
Run Code Online (Sandbox Code Playgroud)各种进步。
PDC 上的 DCDIAG。有一个“指针设备”异常,它不相关并将清除。
Directory Server Diagnosis
Performing initial s
成员服务器显示它正在使用 AllSync 类型并与外部时间源 (time.windows.com) 同步。它应该使用 NT5DS 类型并与其中一台 DC 同步。您应该在成员服务器上重新配置 w32time 来解决这个问题。